Privacy Policy

AvantTrack — https://www.avanttrack.com

Effective Date: April 10, 2026
Last Updated: April 10, 2026


1. Introduction

AvantTrack ("we", "our", or "us") operates the website located at https://www.avanttrack.com (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website or sign up for our waitlist or subscription services.

We are committed to protecting your privacy in accordance with the General Data Protection Regulation (GDPR) (EU) 2016/679, the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), and other applicable data protection laws. Please read this policy carefully. If you do not agree with its terms, please discontinue use of the Service.


2. Data Controller

For the purposes of the GDPR, the data controller is AvantTrack. You can contact us at privacy@avanttrack.com.


3. Information We Collect

We collect information in two ways: information you provide directly, and information collected automatically.

3.1 Information You Provide Directly

Data Type When Collected Purpose
Email address When you join the waitlist To send product updates and launch notifications
First name (optional) When you join the waitlist To personalise communications
Email address When you create an account To authenticate you and manage your subscription
Billing information When you subscribe to a paid plan Processed by our payment provider; we do not store card details
UTM taxonomy data When you use the product To provide the core Service functionality

3.2 Information Collected Automatically

When you visit our website, we may automatically collect certain technical information, including your IP address (anonymised), browser type and version, operating system, referring URL, pages visited, and time spent on pages. This data is collected through Umami Analytics, a privacy-first, cookie-free analytics tool that does not use cookies and does not track individuals across websites. We do not use Google Analytics, Facebook Pixel, or any third-party advertising trackers on this website.


4. Legal Basis for Processing (GDPR)

Under the GDPR, we rely on the following legal bases to process your personal data:

Processing Activity Legal Basis GDPR Article
Sending waitlist updates Consent (freely given, specific, informed, unambiguous) Art. 6(1)(a)
Providing the Service to subscribers Performance of a contract Art. 6(1)(b)
Processing payments Performance of a contract Art. 6(1)(b)
Fraud prevention and security Legitimate interests Art. 6(1)(f)
Compliance with legal obligations Legal obligation Art. 6(1)(c)
Anonymised analytics Legitimate interests (no personal data processed) Art. 6(1)(f)

Where we rely on consent as our legal basis, you have the right to withdraw that consent at any time without affecting the lawfulness of processing carried out before withdrawal. You may withdraw consent by clicking "Unsubscribe" in any email we send you, or by contacting us at privacy@avanttrack.com.


5. How We Use Your Information

We use the information we collect to operate and improve the Service, including processing your account registration, managing your subscription, and providing customer support. We communicate with you about your account via transactional emails such as subscription confirmations, payment receipts, and security notices. Where you have given consent, we send marketing communications about AvantTrack. We also use data to detect, investigate, and prevent fraudulent transactions and other illegal activities, and to comply with legal obligations including responding to lawful requests from public authorities.

We do not sell, rent, or trade your personal information to third parties for their own marketing purposes.


6. Data Sharing and Third-Party Processors

We share your personal data only with trusted third-party service providers who process data on our behalf under written data processing agreements:

Processor Purpose Location Safeguard
Kit (ConvertKit) Waitlist and email marketing United States Standard Contractual Clauses (SCCs)
Supabase Database and authentication United States / EU (configurable) SCCs / EU hosting available
Lemon Squeezy Payment processing and billing United States SCCs
Umami Analytics Anonymised website analytics Self-hosted / EU No personal data transferred

We do not transfer your personal data to any country outside the European Economic Area (EEA) without ensuring an appropriate safeguard is in place, such as Standard Contractual Clauses approved by the European Commission.


7. Cookies

Our website does not use cookies for analytics or advertising. We use Umami Analytics, which is a cookieless solution. The only cookies that may be set are strictly necessary session cookies required for authentication once you log in to your AvantTrack account. These cookies are essential for the Service to function and cannot be disabled.


8. Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, or as required by law:

Data Type Retention Period
Waitlist email address Until you unsubscribe or request deletion
Account data Duration of your subscription + 90 days after account closure
Billing records 7 years (legal/tax obligation)
Anonymised analytics Aggregated indefinitely (no personal data)

9. Your Rights Under GDPR (EEA and UK Residents)

If you are located in the European Economic Area or the United Kingdom, you have the following rights under the GDPR:

Right Description
Right of access Request a copy of the personal data we hold about you.
Right to rectification Request that we correct inaccurate or incomplete personal data.
Right to erasure Request that we delete your personal data, subject to certain legal exceptions.
Right to restriction Request that we restrict the processing of your data in certain circumstances.
Right to data portability Request a copy of your data in a structured, machine-readable format.
Right to object Object to processing based on legitimate interests or for direct marketing.
Right to withdraw consent Where processing is based on consent, withdraw it at any time.
Right to lodge a complaint Lodge a complaint with your local data protection supervisory authority.

To exercise any of these rights, please contact us at privacy@avanttrack.com. We will respond within 30 days. You can find your EU supervisory authority at https://edpb.europa.eu/about-edpb/board/members_en.


10. Your Rights Under CCPA/CPRA (California Residents)

If you are a California resident, the CCPA as amended by the CPRA grants you the following rights:

Right Description
Right to Know Request disclosure of what personal information we collect, use, and disclose.
Right to Delete Request deletion of personal information we have collected from you.
Right to Correct Request correction of inaccurate personal information.
Right to Opt-Out of Sale We do not sell or share your personal information.
Right to Non-Discrimination We will not discriminate against you for exercising your rights.

To submit a verifiable consumer request, please contact us at privacy@avanttrack.com with the subject line "CCPA Request". We will respond within 45 days.

Shine the Light (Cal. Civ. Code § 1798.83): We do not disclose personal information to third parties for their direct marketing purposes.


11. Children's Privacy

The Service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have inadvertently collected such information, please contact us immediately at privacy@avanttrack.com and we will take steps to delete it.


12. Security

We implement appropriate technical and organisational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or access. These measures include encrypted data transmission (TLS/HTTPS), database-level row security policies, and access controls limited to authorised personnel. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.


13. Links to Third-Party Websites

Our website may contain links to third-party websites. We are not responsible for the privacy practices of those websites and encourage you to review their privacy policies before providing any personal information.


14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last Updated" date at the top of this page and, where required by law, notify you by email. Your continued use of the Service after any changes constitutes your acceptance of the updated policy.


15. Contact Us

For any questions, concerns, or requests relating to this Privacy Policy or your personal data, please contact us at:

AvantTrack — Data Privacy
Email: privacy@avanttrack.com
Website: https://www.avanttrack.com

EU/UK residents: response within 30 days
California residents: response within 45 days


© 2026 AvantTrack. All rights reserved.